76/100 SECURITY SCORE

Certificate Information

Subject
CN=crasan.com
Issuer
C=US, O=Let's Encrypt, CN=R13
Valid From
February 19, 2026
Valid Until
May 20, 2026 84 days
Public Key
RSA 4096 bit Strong
Signature Algorithm
SHA256-RSA
SHA-256 Fingerprint
43:01:35:03:2C:40:39:A4:B8:5B:BA:43:8B:FA:75:C8:B3:64:10:C1:03:09:E4:7E:9B:8C:7A:5D:53:74:52:05
Alternative Names

Security Configuration

TLS Protocols
TLS 1.2 TLS 1.3
Forward Secrecy
Supported (Modern clients use PFS)

HTTP Security Headers

Status
Strict-Transport-Security
Missing
Not configured
Content-Security-Policy
Missing
Not configured Analyze
Content-Security-Policy-Report-Only
Missing
Not configured Analyze
X-Frame-Options
Missing
Not configured
X-Content-Type-Options
Missing
Not configured
Referrer-Policy
Missing
Not configured
Permissions-Policy
Missing
Not configured
Recommendations
  • Add Strict-Transport-Security header with max-age of at least 1 year
  • Add Content-Security-Policy header to prevent XSS attacks
  • Add X-Frame-Options: DENY or SAMEORIGIN to prevent clickjacking
  • Add X-Content-Type-Options: nosniff
  • Add Referrer-Policy header (recommended: strict-origin-when-cross-origin)
  • Consider adding Permissions-Policy to control browser features

CAA Records (Certificate Authority Authorization)

CAA Records
Not Configured (Any CA can issue certificates)
CAA Issues
  • No CAA records configured - any CA can issue certificates
Recommendations
  • Implement CAA records to restrict which CAs can issue certificates for your domain
  • This adds an extra layer of security against unauthorized certificate issuance
  • Example: Add CAA record 'example.com. CAA 0 issue "letsencrypt.org"'
  • Consider adding 'iodef' record to receive security incident reports

Subject Alternative Names

90 domains
casassanluis.com *.casassanluis.com *.demo.casassanluis.com *.forums.casassanluis.com *.help.casassanluis.com *.ww1.casassanluis.com *.ww16.casassanluis.com *.ww17.casassanluis.com *.ww25.casassanluis.com *.ww38.casassanluis.com *.www.casassanluis.com

Other domains in certificate

crasan.com *.crasan.com *.ww17.crasan.com *.ww38.crasan.com
deslizamiento.com *.deslizamiento.com *.ww17.deslizamiento.com *.ww25.deslizamiento.com
*.api.kmkap6t.com *.backend.kmkap6t.com *.ht.kmkap6t.com *.htt.kmkap6t.com kmkap6t.com *.kmkap6t.com *.testing.kmkap6t.com *.ww.kmkap6t.com *.ww12.kmkap6t.com *.www.kmkap6t.com
*.api.negociosdaterra.com *.crm.negociosdaterra.com *.mail.negociosdaterra.com negociosdaterra.com *.negociosdaterra.com *.ww16.negociosdaterra.com *.ww17.negociosdaterra.com *.ww25.negociosdaterra.com
*.admin.plantat.com *.api.plantat.com *.argo.plantat.com *.autodiscover.plantat.com *.bb.plantat.com *.cloudvpn.plantat.com *.compass.plantat.com *.es.plantat.com *.health.plantat.com *.jjc.plantat.com *.lvercm.plantat.com *.mail.plantat.com *.mail2.plantat.com *.mes.plantat.com *.mts.plantat.com plantat.com *.plantat.com *.proton.plantat.com *.static2.plantat.com *.top.plantat.com *.ww11.plantat.com *.ww16.plantat.com *.ww38.plantat.com *.ww5.plantat.com *.www.plantat.com
*.api.shintu.com *.dev.shintu.com *.gp.shintu.com *.mail.shintu.com *.pbpsustart.shintu.com *.remote.shintu.com *.remoteapps1.shintu.com shintu.com *.shintu.com *.sitemap.shintu.com *.sitemaps.shintu.com *.ssl.shintu.com *.test.shintu.com *.web2.shintu.com *.ww1.shintu.com *.ww16.shintu.com *.ww17.shintu.com
*.access.visionservices.com *.euro.visionservices.com *.hostmaster.visionservices.com *.m.visionservices.com *.spectera.visionservices.com visionservices.com *.visionservices.com *.ww1.visionservices.com *.ww11.visionservices.com *.ww16.visionservices.com *.ww38.visionservices.com